Go Back   Super Soaker Central > Super Soaker Central > Feedback
User Name
Password
Register FAQ Members List Calendar Mark Forums Read


Welcome to the SSC Forums! You are currently viewing our boards as a guest which gives you limited access. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and more. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact contact us.
Reply
 
Thread Tools
Old 06-08-2004, 08:35 PM   #1
DX
Wicked Super Admin
 
DX's Avatar
 
Join Date: Feb 2004
Location: Easton / New London, CT
Posts: 1,576
UserID: 75
Default

Sniper as of lately has been rambling on about wanting to hack SSC. If someone was able to, is there any kind of backup that would restore the site? Waterbridges site has been hacked in the past. I doubt there is any threat but Doom, I would at least disable the source code.
__________________
Mess With the Best, Get Soaked Like the Rest!!

2004 Red Sox - World Series Champions
2007 RED SOX - WORLD SERIES CHAMPIONS!
2003 Patriots - Super Bowl Champions
2004 Patriots - Super Bowl Champions
2007 Patriots - God Damnit!



If I change my sig, will the world end?
DX is offline   Reply With Quote
Old 06-08-2004, 08:59 PM   #2
Hyper_9
Senior Member
 
Join Date: Jun 2003
Location: Somewhere in California
Posts: 313
UserID: 51
Default

There are a few measures I know of. Either way, I know for a fact neo patches the entire site, SQL queries and all, onto his HD. If he tried it, it could be restored in 15 minutes.And I get to enjoy DoS on snipers computer, and reporting him to the authortities.

We already have a full set of personal information on him, as he was a complete idiot with many privacy issues.

He would be totally screwed.
__________________
Offical DMOZ Editor of "Recreation: Guns: Toy: Water Guns"
Soak On
HYPERACTIVE 4 EVER!
Hyper_9 is offline   Reply With Quote
Old 06-08-2004, 09:14 PM   #3
Ben
Founder
 
Ben's Avatar
 
Join Date: Mar 2003
Location: College Park, Maryland
Posts: 6,054
UserID: 1
Default

Hyper is right, if he hacks us then he pretty much has screwed himself. I make backups of the site every once and a while. Sometimes I will make SQL backups, but not as often as the site.

There is no way sniper is getting into the site's FTP or CPanel. The password is randomly generated, and he doesn't even know the username to begin with. It will take him years to get through bruteforce. I'm also confident in the security of the servers we're running on. It's not going to happen.
__________________

email: [email address] / Forum rules / Read this page before emailing me.

Do not send me a PM or email with a water gun question if someone else could answer the question. Post at the forums. You will get a response from me along with others' views or ideas.
Ben is offline   Reply With Quote
Old 06-08-2004, 09:58 PM   #4
Monsoon
Retired Moderator
 
Monsoon's Avatar
 
Join Date: Jul 2003
Location: Canada
Posts: 832
UserID: 56
Default

I doubt that he would be the one hacking. He's probably going to get a friend of his or something to do the hacking for him. Yeah, all that security is enough to convince me that sniper won't be able to do anything.
__________________
Do not underestimate the power of stupidity in large groups
Monsoon is offline   Reply With Quote
Old 06-09-2004, 09:40 AM   #5
RacerSoaker445
Still selling stuff.
 
RacerSoaker445's Avatar
 
Join Date: Mar 2004
Location: On my tricked out PC
Posts: 944
UserID: 83
Default

I have gotten into the site's directory, say the uploads area where a lot of things are uploaded.

Very simple, but in order to keep people from doing that, you need to redierect, say, Fourms.SSC.net/uploads/ to the page you were just at. My Mom has a very large site that has that, ultra handy.
__________________
WORKING Guns For Sale: CPS 3200, Max-D 5000, WW Glo-Blaster
BROKEN Guns For Sale:
CPS 1500 + 15 Balloon K-Mod, Flash Flood + 3-layer collossus & PRVD, XXP 175, WW Hornet, SS 50

More info here. Interested? PM me.
RacerSoaker445 is offline   Reply With Quote
Old 06-09-2004, 05:02 PM   #6
Ben
Founder
 
Ben's Avatar
 
Join Date: Mar 2003
Location: College Park, Maryland
Posts: 6,054
UserID: 1
Default

I actually made it like that on purpose, so I could browse those directories without opening anything special. No security holes there anyway. The SSC images directory is also like that, it's not used anymore though. The most important directory, where most of the site's important info is held, is secure btw (it's sscentral.net/res/ for those who think they might be cool and figure it out). There is no way they could do anything in that directory anyway without opening FTP or CPanel. It's not chmodded to 777 or something similar so a GET/POST based attack isn't an option either.

The only security hole in the entier site is the forum's news, which is not being used currently. But that will not let sniper do anything other than read the first posts of some topics that were deleted and our planning board. Nothing to special, the only hole I know.

Believe me when I say the site is secure. My password is randomly generated, the FTP and CPanel ones are, but I'm not sure about Neo's and Mist's passwords. I've read internet security books before, I used to be into all that hacking XPBackfire-esque. There is no way an elementary schooler could hack this site, unless they were a child hacking prodigy or something. What would he gain by hacking anyway? The FBI making a visit maybe, or his ISP cutting his connection.
__________________

email: [email address] / Forum rules / Read this page before emailing me.

Do not send me a PM or email with a water gun question if someone else could answer the question. Post at the forums. You will get a response from me along with others' views or ideas.
Ben is offline   Reply With Quote
Old 06-10-2004, 03:42 PM   #7
Freakymist
Co-founder
 
Join Date: Mar 2003
Location: Houston,Texas
Posts: 361
UserID: 3
Default

basically the only person (other than doom) that could really destroy this site is me... :Hey, that's funny.: considering I have more access to the site than anyone else including doom (By law I own this place).
__________________
VegPress
Freakymist is offline   Reply With Quote
Old 06-10-2004, 05:57 PM   #8
Neuro
Retired Moderator
 
Neuro's Avatar
 
Join Date: May 2003
Location: Michigan
Posts: 1,081
UserID: 30
Default

not to mention the fact that a bruteforce attack by sniper would be impossible, he has 56k :Hey, that's funny.: (...baaaaddd memories of aol...) and I hate to admit it but it has been a while since I made a backup.... it's summer now though, I'll probably do one within the next week.
__________________
"I used to care, but now I take a pill for that."

You can pretty much ignore the times on that, I rarely ever have Xfire on when I play. I should, though.

Neuro is offline   Reply With Quote
Old 06-10-2004, 07:00 PM   #9
Hyper_9
Senior Member
 
Join Date: Jun 2003
Location: Somewhere in California
Posts: 313
UserID: 51
Default

Quote:
Originally posted by Freakymist@Jun 10 2004, 11:42 AM
basically the only person (other than doom) that could really destroy this site is me... :Hey, that's funny.: considering I have more access to the site than anyone else including doom (By law I own this place).
I SWORE owership of the domain techinally changed place in March...
__________________
Offical DMOZ Editor of "Recreation: Guns: Toy: Water Guns"
Soak On
HYPERACTIVE 4 EVER!
Hyper_9 is offline   Reply With Quote
Old 06-10-2004, 07:08 PM   #10
BlueSmudge
Senior Member
 
BlueSmudge's Avatar
 
Join Date: Apr 2004
Posts: 886
UserID: 97
Default

I wouldn't be so sure about sniper. My blind step-cousin hacked my local hospital's patient medical records when he was 12.

I don't think sniper even has any disabilities.
__________________
--------------------------------------------------------------

BlueSoak.net
--------------------------------------------------------------
BlueSmudge is offline   Reply With Quote
Old 06-10-2004, 07:14 PM   #11
Ben
Founder
 
Ben's Avatar
 
Join Date: Mar 2003
Location: College Park, Maryland
Posts: 6,054
UserID: 1
Default

No Hyper, I paid Freakymist for the hosting and domain to keep it simple.

Hacking is achieved by holes in the system. I am very sure there are no holes that would let us do that. That hospital likely was running of IIS or something similar. Everytime Microsoft fixes something in that, they add a few new holes. It does take time to find them so that's why many go unfound. IIS is unsecure, and it's sad that many servers run off it.
__________________

email: [email address] / Forum rules / Read this page before emailing me.

Do not send me a PM or email with a water gun question if someone else could answer the question. Post at the forums. You will get a response from me along with others' views or ideas.
Ben is offline   Reply With Quote
Old 06-10-2004, 10:11 PM   #12
Neuro
Retired Moderator
 
Neuro's Avatar
 
Join Date: May 2003
Location: Michigan
Posts: 1,081
UserID: 30
Default

fortunately, apache is run on over 60% of the internet's web servers
actually I do know of something..... nevermind I'd have to talk to the site's host about that...
__________________
"I used to care, but now I take a pill for that."

You can pretty much ignore the times on that, I rarely ever have Xfire on when I play. I should, though.

Neuro is offline   Reply With Quote
Old 06-10-2004, 11:25 PM   #13
treebomber
Junior member
 
Join Date: Jun 2004
Posts: 16
UserID: 166
Default

:Hey, that's funny.: what has sniper doen now

I'm an old friend of his.

and yes, if you're wondering, he does have the tools to hack this site. usually what he does is, he will try to crack you're password with a cracker he downloaded a wile back, if that doesn't work, then he will flood the dam place.

but he is just bluffing. He doesn't want to hack sscentral, but he can.
treebomber is offline   Reply With Quote
Old 06-10-2004, 11:47 PM   #14
BlueSmudge
Senior Member
 
BlueSmudge's Avatar
 
Join Date: Apr 2004
Posts: 886
UserID: 97
Default

what did I tell you guys! If a blind kid can do it, a underdeveloped brat can do it.
Or are you just helping sniper threaten us?
__________________
--------------------------------------------------------------

BlueSoak.net
--------------------------------------------------------------
BlueSmudge is offline   Reply With Quote
Old 06-11-2004, 12:08 AM   #15
Hyper_9
Senior Member
 
Join Date: Jun 2003
Location: Somewhere in California
Posts: 313
UserID: 51
Default

Alpha, I know every overrider in the book. SSC Servers are configured to cut off the account for 24 hours after 5 unsucessful login attempts.

Bravo, Theres a difference between a smart blind kid and a dumbass kid.
__________________
Offical DMOZ Editor of "Recreation: Guns: Toy: Water Guns"
Soak On
HYPERACTIVE 4 EVER!
Hyper_9 is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off


All times are GMT -5. The time now is 11:54 PM.


Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 2.2.2
Copyright ©2003 - 2008 The Super Soaker Central project